Posted Sep 1, 2011 5:45 UTC (Thu) by Cato (subscriber, #7643)
[Link]
I agree with the first part, but big organisations need to spend more time/money on continuous monitoring and intrusion detection rather than just "accept it and move on".
Bad week
Posted Sep 1, 2011 17:26 UTC (Thu) by rgmoore (✭ supporter ✭, #75)
[Link]
I think you mean "design a response plan in advance" rather than "move on". The time to plan for a security breach- or any kind of nearly inevitable disaster- is when it's still a possibility rather than an actual event. Any big target like kernel.org that doesn't have a plan to do when they're cracked is being irresponsible.